Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Quickly Freezing and no internet unless in safe mode w/ Networking


  • Please log in to reply

#1
Jtsessions

Jtsessions

    Member

  • Member
  • PipPip
  • 10 posts
Hello. Everything with my computer has been normal, but randomly today I started noticing that the performance had BOMBED and it was suddenly retardedly slow. Additionally, my friends usually join a game that I host and could not do so - the attempts to connect kept timing out. About fifteen minutes before, everything was fine, so I took the server down and rehosted and then I MYSELF couldn't connect - they couldn't, either. I restarted my computer, and now my internet won't work unless I'm in safe mode with networking. The connection strength shows five bars, and I can get onto skype just fine and see that my friends are online, but when I call or send a message, it acts like I'm offline, not reaching a dial tone and the message having the "sending" icon next to it. This makes it seem like I'm definitely getting my internet to go through, but something is proxying it off or something. Additionally, if I start the computer and it isn't in safe mode, it freezes without fail about ~2 minutes into where I can control the cursor. The cursor refuses to move at that point and ctrl+alt+delete won't work - NOTHING works - it's a hard freeze. Also, my clock went from standard 12hr time to 24hr time, which kinda freaked me out. Those are the most notable symptoms.

I updated MBAM and ran that, finding a hijack.homepage but nothing more. I ran norton and then TDSSkiller, then tried to see if combofix's scan might work, but all came up fruitless. I'm hating that I'm losing out on my weekend to this crap. Here's my otl:


OTL logfile created on: 3/26/2011 2:48:54 PM - Run 5
OTL by OldTimer - Version 3.2.20.6 Folder = C:\Users\Joseph\Desktop
64bit- Home Premium Edition (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7600.16385)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.00 Gb Total Physical Memory | 2.00 Gb Available Physical Memory | 69.00% Memory free
5.00 Gb Paging File | 5.00 Gb Available in Paging File | 85.00% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 218.42 Gb Total Space | 100.70 Gb Free Space | 46.10% Space Free | Partition Type: NTFS
Drive D: | 14.17 Gb Total Space | 2.34 Gb Free Space | 16.52% Space Free | Partition Type: NTFS
Drive E: | 99.18 Mb Total Space | 92.59 Mb Free Space | 93.36% Space Free | Partition Type: FAT32

Computer Name: JOSEPH-PC | User Name: Joseph | Logged in as Administrator.
Boot Mode: SafeMode with Networking | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe (Mozilla Corporation)
PRC - C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
PRC - C:\Users\Joseph\Desktop\OTL.exe (OldTimer Tools)


========== Modules (SafeList) ==========

MOD - C:\Users\Joseph\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7600.16661_none_420fe3fa2b8113bd\comctl32.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV:64bit: - (NisSrv) -- c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Microsoft Corporation)
SRV:64bit: - (MsMpSvc) -- c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (Microsoft Corporation)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV:64bit: - (STacSV) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\stacsv64.exe (IDT, Inc.)
SRV:64bit: - (WinDefend) -- C:\Program Files\Windows Defender\MpSvc.dll (Microsoft Corporation)
SRV:64bit: - (AgereModemAudio) -- C:\Program Files\LSI SoftModem\agr64svc.exe (LSI Corporation)
SRV:64bit: - (AESTFilters) -- C:\Windows\SysNative\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_ccf0dd3cb081af84\AESTSr64.exe (Andrea Electronics Corporation)
SRV - (Akamai) -- c:\Program Files (x86)\Common Files\Akamai\netsession_win_d76cf65.dll ()
SRV - (TeamViewer6) -- C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (TeamViewer5) -- C:\Program Files (x86)\TeamViewer\Version5\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (TunngleService) -- C:\Program Files (x86)\Tunngle\TnglCtrl.exe (Tunngle.net GmbH)
SRV - (HPDrvMntSvc.exe) -- C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (NIS) -- C:\Program Files (x86)\Norton Internet Security\Engine\17.8.0.5\ccSvcHst.exe (Symantec Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (GameConsoleService) -- C:\Program Files (x86)\HP Games\HP Game Console\GameConsoleService.exe (WildTangent, Inc.)
SRV - (IDriverT) -- C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe (Macrovision Corporation)


========== Driver Services (SafeList) ==========

DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated)
DRV:64bit: - (SymEvent) -- C:\Windows\SysNative\drivers\SYMEVENT64x86.SYS (Symantec Corporation)
DRV:64bit: - (NisDrv) -- C:\Windows\SysNative\drivers\NisDrvWFP.sys (Microsoft Corporation)
DRV:64bit: - (SYMTDIv) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\symtdiv.sys (Symantec Corporation)
DRV:64bit: - (SymIRON) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\ironx64.sys (Symantec Corporation)
DRV:64bit: - (SymEFA) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\symefa64.sys (Symantec Corporation)
DRV:64bit: - (SRTSP) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\srtsp64.sys (Symantec Corporation)
DRV:64bit: - (SRTSPX) Symantec Real Time Storage Protection (PEL) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\srtspx64.sys (Symantec Corporation)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (ccHP) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\cchpx64.sys (Symantec Corporation)
DRV:64bit: - (tap0901t) TAP-Win32 Adapter V9 (Tunngle) -- C:\Windows\SysNative\drivers\tap0901t.sys (Tunngle.net)
DRV:64bit: - (SymDS) -- C:\Windows\SysNative\drivers\NISx64\1108000.005\symds64.sys (Symantec Corporation)
DRV:64bit: - (atikmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (STHDA) -- C:\Windows\SysNative\drivers\stwrt64.sys (IDT, Inc.)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation)
DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (SrvHsfV92) -- C:\Windows\SysNative\drivers\VSTDPV6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfWinac) -- C:\Windows\SysNative\drivers\VSTCNXT6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (SrvHsfHDA) -- C:\Windows\SysNative\drivers\VSTAZL6.SYS (Conexant Systems, Inc.)
DRV:64bit: - (Ntfs) -- C:\Windows\SysNative\wbem\ntfs.mof ()
DRV:64bit: - (igfx) -- C:\Windows\SysNative\drivers\igdkmd64.sys (Intel Corporation)
DRV:64bit: - (yukonw7) -- C:\Windows\SysNative\drivers\yk62x64.sys (Marvell)
DRV:64bit: - (netw5v64) Intel® -- C:\Windows\SysNative\drivers\netw5v64.sys (Intel Corporation)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV:64bit: - (RTL8167) -- C:\Windows\SysNative\drivers\Rt64win7.sys (Realtek )
DRV:64bit: - (AtiPcie) AMD PCI Express (3GIO) -- C:\Windows\SysNative\drivers\AtiPcie.sys (Advanced Micro Devices Inc.)
DRV:64bit: - (HpqKbFiltr) -- C:\Windows\SysNative\drivers\HpqKbFiltr.sys (Hewlett-Packard Development Company, L.P.)
DRV:64bit: - (AgereSoftModem) -- C:\Windows\SysNative\drivers\agrsm64.sys (LSI Corporation)
DRV:64bit: - (hamachi) -- C:\Windows\SysNative\drivers\hamachi.sys (LogMeIn, Inc.)
DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV - (BHDrvx64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\BASHDefs\20110309.001\BHDrvx64.sys (Symantec Corporation)
DRV - (NAVEX15) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20110325.035\EX64.SYS (Symantec Corporation)
DRV - (eeCtrl) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\VirusDefs\20110325.035\ENG64.SYS (Symantec Corporation)
DRV - (IDSVia64) -- C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\Definitions\IPSDefs\20110325.001\IDSviA64.sys (Symantec Corporation)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/CQNOT/1
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/CQNOT/1

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://securityrespo...er/fix_homepage
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== FireFox ==========

FF - prefs.js..browser.startup.homepage: "http://www.facebook....ome.php?ref=hp"
FF - prefs.js..extensions.enabledItems: [email protected]:1.1
FF - prefs.js..extensions.enabledItems: [email protected]:4.51
FF - prefs.js..extensions.enabledItems: {BBDA0591-3099-440a-AA10-41764D9DB4DB}:2.0
FF - prefs.js..extensions.enabledItems: {2D3F3651-74B9-4795-BDEC-6DA2F431CB62}:4.6
FF - prefs.js..extensions.enabledItems: {D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}:0.9.7.2
FF - prefs.js..extensions.enabledItems: {5e594888-3e8e-47da-b2c6-b0b545112f84}:1.3.1
FF - prefs.js..extensions.enabledItems: [email protected]:1.2.9
FF - prefs.js..network.proxy.type: 0

FF - HKLM\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2009/10/30 23:08:39 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\IPSFFPlgn\ [2011/02/01 12:06:12 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\coFFPlgn\ [2011/02/01 11:55:43 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011/03/24 11:30:46 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.16\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2011/03/24 11:30:46 | 000,000,000 | ---D | M]

[2011/01/31 12:17:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Extensions
[2011/03/25 16:27:08 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\euvehrhl.default\extensions
[2011/02/15 15:06:55 | 000,000,000 | ---D | M] (Save Image in Folder) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\euvehrhl.default\extensions\{5e594888-3e8e-47da-b2c6-b0b545112f84}
[2011/02/02 16:51:58 | 000,000,000 | ---D | M] (Download Statusbar) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\euvehrhl.default\extensions\{D4DD63FA-01E4-46a7-B6B1-EDAB7D6AD389}
[2011/03/08 03:27:24 | 000,000,000 | ---D | M] (LavaFox V1-Blue) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\euvehrhl.default\extensions\[email protected]
[2011/03/07 08:39:54 | 000,000,000 | ---D | M] (TinEye Reverse Image Search) -- C:\Users\Joseph\AppData\Roaming\Mozilla\Firefox\Profiles\euvehrhl.default\extensions\[email protected]
[2011/01/31 12:18:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\Mozilla Firefox\extensions
[2011/01/31 12:18:50 | 000,000,000 | ---D | M] (Skype extension) -- C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2009/10/30 23:08:39 | 000,000,000 | ---D | M] (HP Smart Web Printing) -- C:\PROGRAM FILES (X86)\HP\DIGITAL IMAGING\SMART WEB PRINTING\MOZILLAADDON3
[2011/02/01 11:55:43 | 000,000,000 | ---D | M] (Norton Toolbar) -- C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\COFFPLGN
[2011/02/01 12:06:12 | 000,000,000 | ---D | M] (Norton IPS) -- C:\PROGRAMDATA\NORTON\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.0.0.136\IPSFFPLGN

O1 HOSTS File: ([2011/03/26 14:32:58 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (HP Print Enhancer) - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - No CLSID value found.
O2 - BHO: (Symantec NCO BHO) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation)
O2 - BHO: (Symantec Intrusion Prevention) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\17.8.0.5\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Skype Plug-In) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (FlashGetBHO) - {b070d3e3-fec0-47d9-8e8a-99d4eeb3d3b0} - C:\Users\Joseph\AppData\Roaming\FlashGetBHO\FlashGetBHO3.dll (Trend Media Group)
O2 - BHO: (Microsoft Live Search Toolbar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
O2 - BHO: (HP Smart BHO Class) - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O3 - HKLM\..\Toolbar: (Microsoft Live Search Toolbar) - {1E61ED7C-7CB8-49d6-B9E9-AB4C880C8414} - c:\Program Files (x86)\MSN\Toolbar\3.0.0566.0\msneshellx.dll (Microsoft Corp.)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation)
O3 - HKCU\..\Toolbar\WebBrowser: (no name) - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No CLSID value found.
O3 - HKCU\..\Toolbar\WebBrowser: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.8.0.5\coieplg.dll (Symantec Corporation)
O4:64bit: - HKLM..\Run: [MSC] c:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [NortonOnlineBackupReminder] C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe (Symantec Corporation)
O4 - HKLM..\Run: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (PowerISO Computing, Inc.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\RunOnce: [] File not found
O4 - HKLM..\RunOnce: [GrpConv] C:\Windows\SysWow64\grpconv.exe (Microsoft Corporation)
O4 - Startup: C:\Users\Joseph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip ()
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Download all by FlashGet3 - C:\Users\Joseph\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8:64bit: - Extra context menu item: Download by FlashGet3 - C:\Users\Joseph\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O8 - Extra context menu item: Download all by FlashGet3 - C:\Users\Joseph\AppData\Roaming\FlashGetBHO\GetAllUrl.htm ()
O8 - Extra context menu item: Download by FlashGet3 - C:\Users\Joseph\AppData\Roaming\FlashGetBHO\GetUrl.htm ()
O9 - Extra Button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra 'Tools' menuitem : Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Show or hide HP Smart Web Printing - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} http://content.syste...ri_4.4.21.0.cab (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 130.160.4.4 130.160.4.114
O18:64bit: - Protocol\Handler\livecall {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\msnim {828030A1-22C1-4009-854F-8E305202313F} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - Reg Error: Key error. File not found
O18:64bit: - Protocol\Handler\wlmailhtml {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - Reg Error: Key error. File not found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O28:64bit: - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O28 - HKLM ShellExecuteHooks: {AEB6717E-7E19-11d0-97EE-00C04FD91972} - Reg Error: Key error. File not found
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/03/26 14:38:12 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2011/03/26 14:34:49 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2011/03/26 14:25:00 | 000,212,480 | ---- | C] (SteelWerX) -- C:\Windows\SWXCACLS.exe
[2011/03/26 13:31:02 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Local\ElevatedDiagnostics
[2011/03/18 22:17:10 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Desktop\Lost.Planet.2.v1.1.Update-SKIDROW
[2011/03/18 19:34:31 | 000,204,584 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPAPI.dll
[2011/03/18 19:34:31 | 000,147,752 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPCo4.dll
[2011/03/18 19:34:31 | 000,107,816 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynTPCOM.dll
[2011/03/18 19:34:30 | 000,286,768 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys
[2011/03/18 19:34:28 | 000,261,928 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCtrl.dll
[2011/03/18 19:34:28 | 000,206,120 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCtrl.dll
[2011/03/18 19:34:27 | 000,395,048 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCOM.dll
[2011/03/18 19:34:27 | 000,169,256 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCOM.dll
[2011/03/18 19:31:54 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\nn-NO
[2011/03/18 19:31:53 | 000,439,808 | ---- | C] (Atheros) -- C:\Windows\SysNative\athihvs.dll
[2011/03/18 19:31:53 | 000,060,416 | ---- | C] (Atheros) -- C:\Windows\SysNative\athihvui.dll
[2011/03/18 19:31:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2011/03/18 19:30:05 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\InstallShield
[2011/03/17 20:05:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Booster
[2011/03/17 20:05:35 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2011/03/17 20:05:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IObit
[2011/03/15 13:20:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
[2011/03/15 13:19:55 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Documents\capcom
[2011/03/15 13:14:58 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Documents\Games for Windows - LIVE Demos
[2011/03/15 13:11:56 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2011/03/15 13:11:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
[2011/03/15 12:35:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CAPCOM
[2011/03/15 12:26:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
[2011/03/15 12:26:45 | 000,091,568 | ---- | C] (PowerISO Computing, Inc.) -- C:\Windows\SysNative\drivers\scdemu.sys
[2011/03/15 12:26:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\PowerISO
[2011/03/08 17:58:50 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Documents\Tunngle
[2011/03/08 17:58:50 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\Tunngle
[2011/03/08 17:58:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Tunngle
[2011/03/08 17:58:28 | 000,031,232 | ---- | C] (Tunngle.net) -- C:\Windows\SysNative\drivers\tap0901t.sys
[2011/03/08 17:58:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle
[2011/03/08 17:58:25 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Tunngle
[2011/03/08 17:58:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tunngle
[2011/03/05 17:45:46 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Quick Memory Editor
[2011/03/05 17:45:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quick Memory Editor
[2011/03/05 17:45:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Quick Memory Editor
[2011/03/05 17:35:43 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Local\LogMeIn Hamachi
[2011/03/05 02:32:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\BitTorrent
[2011/03/05 02:32:13 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\BitTorrent
[2011/03/05 01:52:02 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\.minecraft
[2011/03/04 04:38:27 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Documents\RPGXP
[2011/03/03 23:49:13 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\gtk-2.0
[2011/03/03 23:49:06 | 000,000,000 | ---D | C] -- C:\Users\Joseph\.thumbnails
[2011/03/03 23:39:48 | 000,000,000 | ---D | C] -- C:\Users\Joseph\.gimp-2.6
[2011/03/03 23:39:36 | 000,000,000 | ---D | C] -- C:\Users\Joseph\.gegl-0.0
[2011/03/03 15:05:06 | 000,000,000 | ---D | C] -- C:\ProgramData\{23D58E70-3B83-4B83-A227-68770F84F5EC}
[2011/03/03 14:36:08 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\HP Support Assistant
[2011/03/03 12:32:48 | 000,000,000 | ---D | C] -- C:\Users\Joseph\.realobjects
[2011/03/03 09:03:41 | 000,000,000 | ---D | C] -- C:\ProgramData\muvee Technologies
[2011/03/03 09:03:09 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\muvee Technologies
[2011/02/27 03:09:42 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
[2011/02/27 03:09:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/02/27 03:05:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2011/02/27 01:50:13 | 000,000,000 | ---D | C] -- C:\Users\Joseph\Desktop\Project Pancake
[2011/02/27 01:17:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Enterbrain
[2011/02/27 01:15:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Enterbrain
[2011/02/25 23:19:15 | 000,000,000 | ---D | C] -- C:\Users\Joseph\AppData\Roaming\vlc
[2011/02/25 23:18:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2011/02/25 23:17:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN

========== Files - Modified Within 30 Days ==========

[2011/03/26 14:40:44 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2011/03/26 14:40:37 | 2211,602,432 | -HS- | M] () -- C:\hiberfil.sys
[2011/03/26 14:37:32 | 000,000,894 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2011/03/26 14:32:58 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2011/03/26 14:24:53 | 004,303,437 | R--- | M] () -- C:\Users\Joseph\Desktop\ComboFix.exe
[2011/03/26 14:13:47 | 000,000,691 | ---- | M] () -- C:\Users\Joseph\AppData\Roaming\GetValue.vbs
[2011/03/26 14:13:47 | 000,000,035 | ---- | M] () -- C:\Users\Joseph\AppData\Roaming\SetValue.bat
[2011/03/26 13:34:27 | 001,304,184 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2011/03/26 13:34:27 | 000,341,244 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2011/03/26 13:34:27 | 000,005,368 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2011/03/26 13:23:04 | 000,000,898 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2011/03/25 12:46:20 | 000,023,024 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2011/03/25 12:46:20 | 000,023,024 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2011/03/25 12:37:56 | 000,000,336 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForJoseph.job
[2011/03/24 19:58:36 | 000,006,212 | ---- | M] () -- C:\Users\Joseph\Desktop\th_411.jpg
[2011/03/22 22:09:34 | 000,413,132 | ---- | M] () -- C:\Users\Joseph\Desktop\fantasy-30.jpg
[2011/03/19 01:41:26 | 000,476,101 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112041.jpg
[2011/03/19 01:40:50 | 000,343,493 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112040a.jpg
[2011/03/19 01:40:40 | 000,340,430 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112040.jpg
[2011/03/19 01:15:48 | 000,605,899 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112015b.jpg
[2011/03/19 01:15:32 | 000,612,390 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112015a.jpg
[2011/03/19 01:15:22 | 000,614,455 | ---- | M] () -- C:\Users\Joseph\Desktop\0318112015.jpg
[2011/03/18 19:35:26 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2011/03/18 19:34:03 | 000,286,768 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys
[2011/03/18 19:34:03 | 000,204,584 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPAPI.dll
[2011/03/18 19:34:03 | 000,147,752 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPCo4.dll
[2011/03/18 19:34:03 | 000,107,816 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynTPCOM.dll
[2011/03/18 19:34:01 | 000,261,928 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCtrl.dll
[2011/03/18 19:34:01 | 000,206,120 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCtrl.dll
[2011/03/18 19:34:01 | 000,169,256 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCOM.dll
[2011/03/18 19:34:00 | 000,395,048 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCOM.dll
[2011/03/18 18:11:54 | 000,026,709 | ---- | M] () -- C:\Users\Joseph\Desktop\Xlive.zip
[2011/03/18 07:24:41 | 000,002,344 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2011/03/17 20:05:42 | 000,001,172 | ---- | M] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
[2011/03/17 20:05:42 | 000,001,160 | ---- | M] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2011/03/17 20:02:33 | 000,015,622 | ---- | M] () -- C:\Users\Joseph\Desktop\Capture.JPG
[2011/03/17 18:10:12 | 000,023,947 | ---- | M] () -- C:\Users\Joseph\Desktop\XliveAlex.rar
[2011/03/17 14:43:28 | 000,001,854 | ---- | M] () -- C:\Users\Joseph\AppData\Roaming\GhostObjGAFix.xml
[2011/03/17 14:23:54 | 000,425,465 | ---- | M] () -- C:\Users\Joseph\Desktop\Files.rar
[2011/03/17 14:04:10 | 000,338,458 | ---- | M] () -- C:\Users\Joseph\Desktop\nty o.o.PNG
[2011/03/17 03:51:12 | 001,010,733 | ---- | M] () -- C:\Users\Joseph\Desktop\IMG_17032011_035319.png
[2011/03/16 22:15:12 | 000,330,822 | ---- | M] () -- C:\Users\Joseph\Desktop\mabinogi_2011_03_17_002.jpg
[2011/03/16 12:00:37 | 000,289,570 | ---- | M] () -- C:\Users\Joseph\Desktop\mabinogi_2011_03_16_001.jpg
[2011/03/16 00:17:34 | 000,015,929 | ---- | M] () -- C:\Users\Joseph\Desktop\System specs.PNG
[2011/03/15 15:43:25 | 000,340,757 | ---- | M] () -- C:\Users\Joseph\Desktop\2a690dc57a4748142fcada14df8addca.jpg
[2011/03/15 15:33:46 | 000,248,942 | ---- | M] () -- C:\Users\Joseph\Desktop\shot_019.jpg
[2011/03/15 13:46:54 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\Access.dat
[2011/03/15 12:26:51 | 000,001,011 | ---- | M] () -- C:\Users\Public\Desktop\PowerISO.lnk
[2011/03/13 18:59:52 | 000,044,888 | ---- | M] () -- C:\Users\Joseph\Desktop\Snapshot_20110228_5.jpg
[2011/03/13 16:24:15 | 030,648,284 | ---- | M] () -- C:\Users\Joseph\Desktop\[desudesu] Takaku-ya - Touhou Enchantresses' Dance 7.zip
[2011/03/13 00:47:00 | 000,187,227 | ---- | M] () -- C:\Users\Joseph\Desktop\mcpatcher-1.1.12_02.exe
[2011/03/13 00:46:44 | 000,198,195 | ---- | M] () -- C:\Users\Joseph\Desktop\tronic.zip
[2011/03/12 13:52:58 | 000,001,182 | ---- | M] () -- C:\Users\Joseph\Desktop\ Mabinogi .lnk
[2011/03/12 11:55:38 | 000,032,880 | ---- | M] () -- C:\Users\Joseph\Desktop\herobrine.png
[2011/03/11 23:09:50 | 000,014,629 | ---- | M] () -- C:\Users\Joseph\Desktop\Joseph Session1.docx
[2011/03/11 00:03:57 | 003,932,214 | ---- | M] () -- C:\Users\Joseph\Desktop\cc3.bmp
[2011/03/10 03:05:55 | 002,899,964 | ---- | M] () -- C:\Users\Joseph\Desktop\Yummy and yummy pancake.wav
[2011/03/09 12:19:28 | 000,000,109 | ---- | M] () -- C:\Users\Joseph\webct_upload_applet.properties
[2011/03/09 12:16:45 | 000,034,039 | ---- | M] () -- C:\Users\Joseph\Desktop\midterm grades.png
[2011/03/08 18:03:36 | 000,354,176 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2011/03/08 17:58:36 | 000,000,957 | ---- | M] () -- C:\Users\Joseph\Application Data\Microsoft\Internet Explorer\Quick Launch\Tunngle beta.lnk
[2011/03/08 17:58:34 | 000,000,933 | ---- | M] () -- C:\Users\Public\Desktop\Tunngle beta.lnk
[2011/03/07 18:22:12 | 000,253,855 | ---- | M] () -- C:\Users\Joseph\Desktop\it's horrible, laugh anywa.PNG
[2011/03/07 18:12:43 | 000,221,301 | ---- | M] () -- C:\Users\Joseph\Desktop\jhjh.PNG
[2011/03/06 02:19:30 | 000,221,652 | ---- | M] () -- C:\Users\Joseph\Desktop\dsgag.PNG
[2011/03/06 02:19:26 | 000,117,508 | ---- | M] () -- C:\Users\Joseph\Desktop\vfdv.PNG
[2011/03/06 01:59:13 | 000,209,689 | ---- | M] () -- C:\Users\Joseph\Desktop\tshe.PNG
[2011/03/06 01:40:06 | 000,274,949 | ---- | M] () -- C:\Users\Joseph\Desktop\fhs.PNG
[2011/03/06 01:37:53 | 000,217,259 | ---- | M] () -- C:\Users\Joseph\Desktop\hrgj.PNG
[2011/03/06 01:30:45 | 000,190,768 | ---- | M] () -- C:\Users\Joseph\Desktop\jyl.PNG
[2011/03/06 01:26:58 | 000,284,570 | ---- | M] () -- C:\Users\Joseph\Desktop\dfasfae.PNG
[2011/03/05 17:45:48 | 000,001,093 | ---- | M] () -- C:\Users\Joseph\Desktop\Quick Memory Editor.lnk
[2011/03/05 16:09:51 | 046,588,856 | ---- | M] () -- C:\Users\Joseph\Desktop\MINECRAP.rar
[2011/03/05 02:32:59 | 000,000,991 | ---- | M] () -- C:\Users\Joseph\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2011/03/05 02:32:59 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2011/03/04 23:09:27 | 000,000,848 | -HS- | M] () -- C:\Windows\SysWow64\KGyGaAvL.sys
[2011/03/04 18:15:48 | 000,003,750 | ---- | M] () -- C:\Users\Joseph\Desktop\177-Chest04.png
[2011/03/04 17:41:41 | 000,031,030 | ---- | M] () -- C:\Users\Joseph\Desktop\Openboxes2.bmp
[2011/03/04 15:53:05 | 000,135,262 | ---- | M] () -- C:\Users\Joseph\Desktop\done.png
[2011/03/04 15:10:34 | 003,159,121 | ---- | M] () -- C:\Users\Joseph\Desktop\Music sound effects.rar
[2011/03/04 15:09:46 | 001,315,209 | ---- | M] () -- C:\Users\Joseph\Desktop\Graphics bttlers and window skin.rar
[2011/03/04 14:53:34 | 000,084,711 | ---- | M] () -- C:\Users\Joseph\Desktop\macro.xcf
[2011/03/04 14:53:34 | 000,002,103 | ---- | M] () -- C:\Users\Joseph\.recently-used.xbel
[2011/03/04 14:44:44 | 000,000,000 | ---- | M] () -- C:\Users\Joseph\Desktop\BGM.rar
[2011/03/04 14:36:10 | 000,126,703 | ---- | M] () -- C:\Users\Joseph\Desktop\ps4-3-28.PNG
[2011/03/04 04:34:34 | 000,025,654 | ---- | M] () -- C:\Users\Joseph\Desktop\seoxsprinter.bmp
[2011/03/03 15:08:32 | 000,002,179 | ---- | M] () -- C:\Users\Public\Desktop\HP Support Assistant.lnk
[2011/03/02 11:23:08 | 000,513,648 | ---- | M] () -- C:\Users\Joseph\Desktop\CHRIIIIIIIIIIIIIIIIIIIIIIIIIIIISSSSSSSSPANCAKE.wav
[2011/03/01 11:34:49 | 000,139,955 | ---- | M] () -- C:\Users\Joseph\Desktop\ththmaisoionga1.gif
[2011/02/28 10:55:33 | 000,025,654 | ---- | M] () -- C:\Users\Joseph\Desktop\3 thong dong.bmp
[2011/02/27 03:09:43 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/02/27 01:40:12 | 000,000,056 | RHS- | M] () -- C:\Windows\SysWow64\C1E7CD5369.sys
[2011/02/25 23:24:46 | 000,000,022 | ---- | M] () -- C:\Users\Joseph\Desktop\gotta see.jpeg
[2011/02/25 23:18:42 | 000,001,070 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk

========== Files Created - No Company Name ==========

[2011/03/26 14:13:47 | 000,000,691 | ---- | C] () -- C:\Users\Joseph\AppData\Roaming\GetValue.vbs
[2011/03/26 14:13:47 | 000,000,035 | ---- | C] () -- C:\Users\Joseph\AppData\Roaming\SetValue.bat
[2011/03/24 19:58:32 | 000,006,212 | ---- | C] () -- C:\Users\Joseph\Desktop\th_411.jpg
[2011/03/22 22:09:16 | 000,413,132 | ---- | C] () -- C:\Users\Joseph\Desktop\fantasy-30.jpg
[2011/03/20 14:31:28 | 000,605,899 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112015b.jpg
[2011/03/20 14:31:28 | 000,343,493 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112040a.jpg
[2011/03/20 14:31:28 | 000,340,430 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112040.jpg
[2011/03/20 14:31:27 | 000,614,455 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112015.jpg
[2011/03/20 14:31:27 | 000,612,390 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112015a.jpg
[2011/03/20 14:31:27 | 000,476,101 | ---- | C] () -- C:\Users\Joseph\Desktop\0318112041.jpg
[2011/03/18 19:35:26 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2011/03/18 18:11:50 | 000,026,709 | ---- | C] () -- C:\Users\Joseph\Desktop\Xlive.zip
[2011/03/17 20:05:42 | 000,001,172 | ---- | C] () -- C:\Users\Public\Desktop\Switch to Gaming Mode.lnk
[2011/03/17 20:05:41 | 000,001,160 | ---- | C] () -- C:\Users\Public\Desktop\Game Booster.lnk
[2011/03/17 20:02:33 | 000,015,622 | ---- | C] () -- C:\Users\Joseph\Desktop\Capture.JPG
[2011/03/17 18:09:56 | 000,023,947 | ---- | C] () -- C:\Users\Joseph\Desktop\XliveAlex.rar
[2011/03/17 14:43:28 | 000,001,854 | ---- | C] () -- C:\Users\Joseph\AppData\Roaming\GhostObjGAFix.xml
[2011/03/17 14:23:40 | 000,425,465 | ---- | C] () -- C:\Users\Joseph\Desktop\Files.rar
[2011/03/17 14:03:21 | 000,338,458 | ---- | C] () -- C:\Users\Joseph\Desktop\nty o.o.PNG
[2011/03/17 03:51:04 | 001,010,733 | ---- | C] () -- C:\Users\Joseph\Desktop\IMG_17032011_035319.png
[2011/03/16 22:14:56 | 000,330,822 | ---- | C] () -- C:\Users\Joseph\Desktop\mabinogi_2011_03_17_002.jpg
[2011/03/16 14:14:40 | 022,128,715 | ---- | C] () -- C:\Users\Joseph\Desktop\LP2POG.pdf
[2011/03/16 12:00:25 | 000,289,570 | ---- | C] () -- C:\Users\Joseph\Desktop\mabinogi_2011_03_16_001.jpg
[2011/03/16 00:17:32 | 000,015,929 | ---- | C] () -- C:\Users\Joseph\Desktop\System specs.PNG
[2011/03/15 15:43:13 | 000,340,757 | ---- | C] () -- C:\Users\Joseph\Desktop\2a690dc57a4748142fcada14df8addca.jpg
[2011/03/15 15:33:37 | 000,248,942 | ---- | C] () -- C:\Users\Joseph\Desktop\shot_019.jpg
[2011/03/15 13:19:23 | 000,001,338 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
[2011/03/15 12:26:50 | 000,001,011 | ---- | C] () -- C:\Users\Public\Desktop\PowerISO.lnk
[2011/03/13 18:59:49 | 000,044,888 | ---- | C] () -- C:\Users\Joseph\Desktop\Snapshot_20110228_5.jpg
[2011/03/13 16:12:28 | 030,648,284 | ---- | C] () -- C:\Users\Joseph\Desktop\[desudesu] Takaku-ya - Touhou Enchantresses' Dance 7.zip
[2011/03/13 00:46:58 | 000,187,227 | ---- | C] () -- C:\Users\Joseph\Desktop\mcpatcher-1.1.12_02.exe
[2011/03/13 00:46:34 | 000,198,195 | ---- | C] () -- C:\Users\Joseph\Desktop\tronic.zip
[2011/03/12 13:52:58 | 000,001,182 | ---- | C] () -- C:\Users\Joseph\Desktop\ Mabinogi .lnk
[2011/03/12 13:49:29 | 046,588,856 | ---- | C] () -- C:\Users\Joseph\Desktop\MINECRAP.rar
[2011/03/12 11:55:35 | 000,032,880 | ---- | C] () -- C:\Users\Joseph\Desktop\herobrine.png
[2011/03/11 23:09:49 | 000,014,629 | ---- | C] () -- C:\Users\Joseph\Desktop\Joseph Session1.docx
[2011/03/10 23:57:18 | 003,932,214 | ---- | C] () -- C:\Users\Joseph\Desktop\cc3.bmp
[2011/03/10 03:04:17 | 002,899,964 | ---- | C] () -- C:\Users\Joseph\Desktop\Yummy and yummy pancake.wav
[2011/03/09 12:16:44 | 000,034,039 | ---- | C] () -- C:\Users\Joseph\Desktop\midterm grades.png
[2011/03/08 18:02:29 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\Access.dat
[2011/03/08 17:58:34 | 000,000,957 | ---- | C] () -- C:\Users\Joseph\Application Data\Microsoft\Internet Explorer\Quick Launch\Tunngle beta.lnk
[2011/03/08 17:58:34 | 000,000,933 | ---- | C] () -- C:\Users\Public\Desktop\Tunngle beta.lnk
[2011/03/07 18:21:53 | 000,253,855 | ---- | C] () -- C:\Users\Joseph\Desktop\it's horrible, laugh anywa.PNG
[2011/03/07 18:12:25 | 000,221,301 | ---- | C] () -- C:\Users\Joseph\Desktop\jhjh.PNG
[2011/03/06 02:19:17 | 000,221,652 | ---- | C] () -- C:\Users\Joseph\Desktop\dsgag.PNG
[2011/03/06 02:19:14 | 000,117,508 | ---- | C] () -- C:\Users\Joseph\Desktop\vfdv.PNG
[2011/03/06 01:58:58 | 000,209,689 | ---- | C] () -- C:\Users\Joseph\Desktop\tshe.PNG
[2011/03/06 01:39:48 | 000,274,949 | ---- | C] () -- C:\Users\Joseph\Desktop\fhs.PNG
[2011/03/06 01:37:35 | 000,217,259 | ---- | C] () -- C:\Users\Joseph\Desktop\hrgj.PNG
[2011/03/06 01:30:29 | 000,190,768 | ---- | C] () -- C:\Users\Joseph\Desktop\jyl.PNG
[2011/03/06 01:26:41 | 000,284,570 | ---- | C] () -- C:\Users\Joseph\Desktop\dfasfae.PNG
[2011/03/05 17:45:48 | 000,001,093 | ---- | C] () -- C:\Users\Joseph\Desktop\Quick Memory Editor.lnk
[2011/03/05 02:32:59 | 000,000,991 | ---- | C] () -- C:\Users\Joseph\Application Data\Microsoft\Internet Explorer\Quick Launch\BitTorrent.lnk
[2011/03/05 02:32:58 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\BitTorrent.lnk
[2011/03/04 18:15:47 | 000,003,750 | ---- | C] () -- C:\Users\Joseph\Desktop\177-Chest04.png
[2011/03/04 17:41:35 | 000,031,030 | ---- | C] () -- C:\Users\Joseph\Desktop\Openboxes2.bmp
[2011/03/04 15:53:05 | 000,135,262 | ---- | C] () -- C:\Users\Joseph\Desktop\done.png
[2011/03/04 15:08:41 | 003,159,121 | ---- | C] () -- C:\Users\Joseph\Desktop\Music sound effects.rar
[2011/03/04 15:08:39 | 001,315,209 | ---- | C] () -- C:\Users\Joseph\Desktop\Graphics bttlers and window skin.rar
[2011/03/04 14:53:34 | 000,002,103 | ---- | C] () -- C:\Users\Joseph\.recently-used.xbel
[2011/03/04 14:44:44 | 000,000,000 | ---- | C] () -- C:\Users\Joseph\Desktop\BGM.rar
[2011/03/04 14:42:58 | 000,084,711 | ---- | C] () -- C:\Users\Joseph\Desktop\macro.xcf
[2011/03/04 14:35:49 | 000,126,703 | ---- | C] () -- C:\Users\Joseph\Desktop\ps4-3-28.PNG
[2011/03/04 04:34:33 | 000,025,654 | ---- | C] () -- C:\Users\Joseph\Desktop\seoxsprinter.bmp
[2011/03/03 15:17:05 | 000,000,336 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForJoseph.job
[2011/03/03 15:08:31 | 000,002,179 | ---- | C] () -- C:\Users\Public\Desktop\HP Support Assistant.lnk
[2011/03/02 11:22:20 | 000,513,648 | ---- | C] () -- C:\Users\Joseph\Desktop\CHRIIIIIIIIIIIIIIIIIIIIIIIIIIIISSSSSSSSPANCAKE.wav
[2011/03/01 11:34:31 | 000,139,955 | ---- | C] () -- C:\Users\Joseph\Desktop\ththmaisoionga1.gif
[2011/02/28 10:41:47 | 000,025,654 | ---- | C] () -- C:\Users\Joseph\Desktop\3 thong dong.bmp
[2011/02/27 03:09:43 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/02/27 01:40:12 | 000,000,056 | RHS- | C] () -- C:\Windows\SysWow64\C1E7CD5369.sys
[2011/02/27 01:40:06 | 000,000,848 | -HS- | C] () -- C:\Windows\SysWow64\KGyGaAvL.sys
[2011/02/27 01:15:31 | 000,002,523 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RPG Maker XP.lnk
[2011/02/25 23:24:45 | 000,000,022 | ---- | C] () -- C:\Users\Joseph\Desktop\gotta see.jpeg
[2011/02/25 23:18:42 | 000,001,070 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2011/02/14 13:46:46 | 000,000,166 | ---- | C] () -- C:\Users\Joseph\AppData\Roaming\wklnhst.dat
[2011/02/03 12:25:09 | 000,005,330 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2011/01/31 12:23:27 | 000,000,025 | ---- | C] () -- C:\Windows\libem.INI
[2011/01/31 12:10:28 | 000,000,000 | ---- | C] () -- C:\Users\Joseph\AppData\Local\QSwitch.txt
[2011/01/31 12:10:28 | 000,000,000 | ---- | C] () -- C:\Users\Joseph\AppData\Local\DSwitch.txt
[2011/01/31 12:10:28 | 000,000,000 | ---- | C] () -- C:\Users\Joseph\AppData\Local\AtStart.txt
[2011/01/31 12:10:26 | 000,000,188 | ---- | C] () -- C:\ProgramData\HPWALog.txt
[2010/10/14 01:36:44 | 000,179,263 | ---- | C] () -- C:\Windows\SysWow64\xlive.dll.cat
[2010/04/14 03:50:25 | 000,000,105 | ---- | C] () -- C:\ProgramData\{d36dd326-7280-11d8-97c8-000129760cbe}.log
[2010/04/14 03:50:16 | 000,000,032 | ---- | C] () -- C:\ProgramData\{051B9612-4D82-42AC-8C63-CD2DCEDC1CB3}.log
[2010/04/14 03:50:03 | 000,000,032 | ---- | C] () -- C:\ProgramData\{9867824A-C86D-4A83-8F3C-E7A86BE0AFD3}.log
[2010/04/14 03:49:44 | 000,000,032 | ---- | C] () -- C:\ProgramData\{23F3DA62-2D9E-4A69-B8D5-BE8E9E148092}.log
[2010/04/14 03:49:06 | 000,000,032 | ---- | C] () -- C:\ProgramData\{4FC670EB-5F02-4B07-90DB-022B86BFEFD0}.log
[2010/04/14 03:33:56 | 000,000,282 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog2.ini
[2010/04/14 03:33:56 | 000,000,223 | ---- | C] () -- C:\Windows\SysWow64\RStoneLog.ini
[2009/10/30 22:57:36 | 000,000,109 | ---- | C] () -- C:\ProgramData\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}.log
[2009/10/30 22:54:13 | 000,000,110 | ---- | C] () -- C:\ProgramData\{CB099890-1D5F-11D5-9EA9-0050BAE317E1}.log
[2009/10/30 22:53:14 | 000,000,105 | ---- | C] () -- C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
[2009/10/30 22:52:45 | 000,000,107 | ---- | C] () -- C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
[2009/09/29 17:25:16 | 000,013,312 | ---- | C] () -- C:\Windows\LPRES.DLL
[2009/07/13 18:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2009/07/13 16:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2005/08/30 01:00:00 | 000,781,312 | ---- | C] () -- C:\Windows\SysWow64\RGSS102J.dll
[2005/08/30 01:00:00 | 000,778,752 | ---- | C] () -- C:\Windows\SysWow64\RGSS102E.dll
[2005/08/30 01:00:00 | 000,771,584 | ---- | C] () -- C:\Windows\SysWow64\RGSS100J.dll

========== LOP Check ==========

[2011/03/05 02:52:37 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\.minecraft
[2011/02/04 19:13:13 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\AnvSoft
[2011/03/05 02:34:43 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\BITS
[2011/03/17 04:25:01 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\BitTorrent
[2011/01/31 12:22:11 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\FlashGet
[2011/01/31 12:22:08 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\FlashGetBHO
[2011/03/04 14:42:58 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\gtk-2.0
[2011/03/03 09:05:00 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\muvee Technologies
[2011/02/17 01:41:35 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\PyScripter
[2011/03/06 10:37:54 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\TeamViewer
[2011/02/14 13:46:51 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\Template
[2011/03/24 05:22:43 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\Tunngle
[2011/02/23 21:54:54 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\wargaming.net
[2011/02/20 22:36:29 | 000,000,000 | ---D | M] -- C:\Users\Joseph\AppData\Roaming\yess
[2009/07/14 00:08:49 | 000,029,842 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT

========== Purity Check ==========



< End of report >











PLEASE HELP! I'd like to actually get to relax on my weekend!

Thank a ton!

EDIT: Just to pass the time (and hoping it'd work), i've tried normally booting three times, each of which went the EXACT SAME:

It took a surprising amount of time for the computer to pass both the windows logo/loading screen and other boot features (1min~ each, compared to the usual 15 seconds) and then the desktop background and the taskbar loaded, WITHOUT ICONS. About ten seconds later, there's a hard freeze and the cursor won't even move. I have to emergency shutdown out of this. As usual, safe mode works fine.

Edited by Jtsessions, 26 March 2011 - 02:42 PM.

  • 0

Advertisements







Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP